Re: PF - problem with NAT policy based rules

2005-09-24 Thread jared r r spiegel
On Fri, Sep 23, 2005 at 03:00:12PM -0400, Chad M Stewart wrote: nat on $ext_if tagged LAN_INET tag LAN_INET_NAT - ($ext_if) The problem is that pfctl complains about a syntax problem with that line. [/home/jrrs] $ echo nat on em0 tagged 1 tag 2 - (em0) | pfctl -nvf- stdin:1: syntax error

Re: PF - problem with NAT policy based rules

2005-09-24 Thread j knight
Chad M Stewart wrote: I'm building a new firewall, or rather an HA pair using OpenBSD, pf, carp, pfsync, etc.. I'm writing a new pf.conf configuration as well. I'm trying to do policy based rules (i.e. tagging), using the PF FAQ (ftp://ftp.openbsd.org/pub/OpenBSD/doc/pf-faq.txt) and in

Re: PF - problem with NAT policy based rules

2005-09-24 Thread Johan Fredin
On Fri, 23 Sep 2005, Chad M Stewart wrote: I'm building a new firewall, or rather an HA pair using OpenBSD, pf, carp, pfsync, etc.. I'm writing a new pf.conf configuration as well. I'm trying to do policy based rules (i.e. tagging), using the PF FAQ

PF - problem with NAT policy based rules

2005-09-23 Thread Chad M Stewart
I'm building a new firewall, or rather an HA pair using OpenBSD, pf, carp, pfsync, etc.. I'm writing a new pf.conf configuration as well. I'm trying to do policy based rules (i.e. tagging), using the PF FAQ (ftp://ftp.openbsd.org/pub/OpenBSD/doc/pf-faq.txt) and in the example it has the